
1.1 Secure Usage Assumptions
716
Red Hat Certificate System Administrator’s Guide • September 2005
A. Authentication Data Management
An authentication data management policy is enforced to ensure that users change their
authentication data at appropriate intervals and to appropriate values (e.g., proper lengths,
histories, variations, etc.) (Note: this assumption is not applicable to biometric
authentication data.)
A. Competent Administrators, Operators, Officers and Auditors
Competent Administrators, Operators, Officers and Auditors will be assigned to manage the
TOE and the security of the information it contains.
A. CPS
All Administrators, Operators, Officers, and Auditors are familiar with the certificate policy
(CP) and certification practices statement (CPS) under which the TOE is operated.
A. Disposal of Authentication Data
Proper disposal of authentication data and associated privileges is performed after access
has been removed (e.g., job termination, change in responsibility).
A. Malicious Code Not Signed
Malicious code destined for the TOE is not signed by a trusted entity.
A. Notify Authorities of Security Issues
Administrators, Operators, Officers, Auditors, and other users notify proper authorities of
any security issues that impact their systems to minimize the potential for the loss or
compromise of data.
A. Social Engineering Training
General users, administrators, operators, officers and auditors are trained in techniques to
thwart social engineering attacks.
A. Cooperative Users
Users need to accomplish some task or group of tasks that require a secure IT environment.
The users require access to at least some of the information managed by the TOE and are
expected to act in a cooperative manner.
Summary of Contents for CERTIFICATE 7.1 ADMINISTRATOR
Page 1: ...Administrator s Guide Red Hat Certificate System Version7 1 September 2005 ...
Page 22: ...22 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 128: ...Cloning a CA 128 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 368: ...ACL Reference 368 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 460: ...Constraints Reference 460 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 592: ...CRL Extension Reference 592 Red Hat Certificate System Administrator s Guide September 2005 ...